RDCPASSBusiness
KYB Verification · Business

Check a Congolese company in the national registries before you sign

Send us a company’s RCCM, ID NAT or NIF and we look it up in the national business registries. You get back its legal identity and current status. Once your organization is approved for them, you can also receive its officers, beneficial owners, licences and registry documents.

  • Look up by RCCM, ID NAT or NIF
  • Legal identity and status in every result
  • Up to 10,000 companies per request
Sandbox example

Verify a business

Identifier
RCCM · CD/KIN/RCCM/23-B-01234
Claimed name
Congo Digital Solutions SARL
  1. Signing request · HMAC-SHA256
  2. Encrypting payload · AES-256-GCM
  3. Looking up the business registers
  4. Resolving officers and beneficial owners

Result

registry identifiers: RCCM, ID NAT, NIF
3
registry identifiers: RCCM, ID NAT, NIF
ownership threshold for owners
25%+
ownership threshold for owners
records per batch
10,000
records per batch
request modes
4
request modes

Why businesses choose KYB Verification

1

Onboard merchants and partners faster

Your team no longer has to collect certificate photocopies or check the registry by hand. One request does the job.

2

Catch shell and defunct companies

A certificate can look genuine for a company that has since been suspended, dissolved or put into liquidation. The registry status tells you which.

3

See who stands behind a company

Directors and beneficial owners come back linked to a certified RDCPASS identity.

How it works

  1. 01

    Your customer or supplier gives you a number

    Their RCCM, ID NAT or NIF, as printed on their certificate.

  2. 02

    You send it with the purpose of the check

    For example merchant onboarding or supplier vetting.

  3. 03

    We look it up in the registry

    RDCPASS finds the company in the matching registry and compares the record with the name and registration date you were given.

  4. 04

    You get the result

    Verified, not found or inactive. A found company comes back with its legal identity and any additional data you are approved to receive.

Capabilities

What you receive

For each company found, RDCPASS returns data from the national business registries:

  • The outcome: verified, not found or inactive
  • The company’s legal identity: legal and trading names, legal form, registration date, current status and all three official numbers
  • How each detail you were given compares with the registry
  • Any additional data your application is approved for, such as addresses, contacts, activities, officers, owners, shareholders, licences, documents or financials
  • Which data was shared and which was withheld
01

Three official identifiers

Search by RCCM, ID NAT or NIF. You only need one; the other two are returned with the result.

02

Claim comparison

Compare the business name and registration date your customer declared with what the registry holds.

03

Officers and beneficial owners

Directors, managers and anyone holding 25% or more, each with verified basic KYC.

04

Licences and registry documents

Sector licences, statutes, trade register extracts and tax certificates are available to organizations that subscribe to them.

05

Portfolio re-verification

A finance team can re-check every supplier before a payment run. You can also re-check your whole merchant base, up to 10,000 companies in one request.

06

Real time or in the background

During onboarding you get the answer straight away. Large checks run in the background and notify your system when they finish.

Integration

One integration for sandbox and production

Requests are HTTPS calls with JSON bodies, signed and encrypted. The sandbox returns the same formats as production, so the code you test with is the code you ship.

  1. 1

    Create an application

    Sign up, create a sandbox application and select the services and data scopes you need.

  2. 2

    Make your first call

    Start from an official SDK or from the samples on the right. Eight languages are covered.

  3. 3

    Go live

    After due diligence, replace the sandbox keys with production keys and add your mTLS certificate. The request code stays the same.

Request modes

Single · sync

One record, answered immediately.

Single · async

One record, result by webhook.

Batch · sync

Up to 50 records per call.

Batch · async

Up to 10,000 records, result by webhook.

mTLSHMAC-SHA256AES-256-GCMAudit log
verify-business.sh
# Plaintext body shown — it is AES-256-GCM encrypted (IV in X-RDCPASS-IV) and signed per /docs/authentication before sending.
curl https://api.rdcpass.cd/v1/kyb/verifications \
  -X POST \
  -H "X-RDCPASS-Key-Id: key_live_8f2a1c0e9b" \
  -H "X-RDCPASS-Timestamp: 1735689600" \
  -H "X-RDCPASS-Nonce: 9c3f7a1e-2b6d-4c85-9e3a-5f8b0d4e7a92" \
  -H "X-RDCPASS-Signature: 5e9b3c...a17f" \
  -H "X-RDCPASS-IV: mX4p9Qz2Lr8sT1vB" \
  -H "Idempotency-Key: b7e2c4a1-5d9f-4e3b-8a61-2f0c9d7e4b18" \
  -H "Content-Type: application/json" \
  -d '{
    "identifier": { "type": "rccm", "value": "CD/KIN/RCCM/23-B-01234" },
    "match": { "business_name": "Congo Digital Solutions SARL", "registration_date": "2023-02-14" },
    "purpose": "customer_onboarding",
    "scopes": ["kyb.addresses", "kyb.officers", "kyb.beneficial_owners", "kyb.licenses"],
    "reference": "supp-0042"
  }'
200 OK
{
  "id": "kyb_3e7a9c1f52",
  "object": "kyb_verification",
  "livemode": true,
  "reference": "supp-0042",
  "status": "completed",
  "result": "verified",
  "identifier": { "type": "rccm", "value": "CD/KIN/RCCM/23-B-01234" },
  "match": {
    "business_name": "match",
    "registration_date": "match",
    "score": 0.99
  },
  "business": {
    "basic": {
      "legal_name": "Congo Digital Solutions SARL",
      "trade_name": "CongoDigital",
      "rccm": "CD/KIN/RCCM/23-B-01234",
      "id_nat": "01-83-N45127K",
      "nif": "A2314567890X",
      "legal_form": "SARL",
      "status": "active",
      "registration_date": "2023-02-14",
      "country": "COD"
    },
    "addresses": {
      "registered_office": {
        "province": "Kinshasa",
        "city": "Kinshasa",
        "commune": "Gombe",
        "quartier": "Batetela",
        "avenue": "Avenue du Commerce",
        "number": "112",
        "verified_at": "2025-11-03T08:40:00Z"
      },
      "branches": [
        {
          "name": "Agence Lubumbashi",
          "province": "Haut-Katanga",
          "city": "Lubumbashi",
          "commune": "Lubumbashi",
          "quartier": "Makutano",
          "avenue": "Avenue Lumumba",
          "number": "45",
          "verified_at": "2025-11-03T08:40:00Z"
        }
      ]
    },
    "contacts": {
      "phone_numbers": [
        { "number": "+243812345678", "is_primary": true, "verified": true },
        { "number": "+243997001122", "is_primary": false, "verified": true }
      ],
      "emails": [
        { "address": "contact@congodigital.cd", "is_primary": true, "verified": true }
      ],
      "website": "https://congodigital.cd"
    },
    "activities": [
      {
        "classification": "ISIC_REV4",
        "code": "6201",
        "description": "Programmation informatique",
        "is_primary": true
      },
      {
        "classification": "ISIC_REV4",
        "code": "6311",
        "description": "Traitement de données, hébergement et activités connexes",
        "is_primary": false
      }
    ],
    "officers": [
      {
        "role": "manager",
        "appointed_at": "2023-02-14",
        "rdcpass_id": "COD-2103-0214-4937",
        "kyc": {
          "basic": {
            "full_name": "Kabeya Mwamba Tshisekedi",
            "first_name": "Kabeya",
            "last_name": "Tshisekedi",
            "date_of_birth": "1988-04-12",
            "age": 38,
            "gender": "male",
            "nationality": "COD"
          }
        }
      },
      {
        "role": "statutory_auditor",
        "appointed_at": "2024-06-30",
        "rdcpass_id": "COD-1907-5530-1186",
        "kyc": {
          "basic": {
            "full_name": "Mbuyi Ilunga Nsimba",
            "first_name": "Mbuyi",
            "last_name": "Nsimba",
            "date_of_birth": "1979-09-23",
            "age": 47,
            "gender": "female",
            "nationality": "COD"
          }
        }
      }
    ],
    "beneficial_owners": [
      {
        "ownership_percent": 60.0,
        "control_type": "direct",
        "rdcpass_id": "COD-2103-0214-4937",
        "kyc": {
          "basic": {
            "full_name": "Kabeya Mwamba Tshisekedi",
            "first_name": "Kabeya",
            "last_name": "Tshisekedi",
            "date_of_birth": "1988-04-12",
            "age": 38,
            "gender": "male",
            "nationality": "COD"
          }
        }
      },
      {
        "ownership_percent": 30.0,
        "control_type": "indirect",
        "rdcpass_id": "COD-1512-8841-0273",
        "kyc": {
          "basic": {
            "full_name": "Mukendi Kalala Tshibanda",
            "first_name": "Mukendi",
            "last_name": "Tshibanda",
            "date_of_birth": "1983-01-07",
            "age": 43,
            "gender": "male",
            "nationality": "COD"
          }
        }
      }
    ],
    "shareholders": [
      {
        "type": "individual",
        "shares": 600,
        "ownership_percent": 60.0,
        "rdcpass_id": "COD-2103-0214-4937",
        "full_name": "Kabeya Mwamba Tshisekedi"
      },
      {
        "type": "entity",
        "shares": 300,
        "ownership_percent": 30.0,
        "legal_name": "Kalala Holding SA",
        "rccm": "CD/LSH/RCCM/19-B-00871"
      },
      {
        "type": "individual",
        "shares": 100,
        "ownership_percent": 10.0,
        "rdcpass_id": "COD-1907-5530-1186",
        "full_name": "Mbuyi Ilunga Nsimba"
      }
    ],
    "licenses": [
      {
        "regulator": "ARPTC",
        "license_type": "Fournisseur de services à valeur ajoutée",
        "license_number": "ARPTC/SVA/2024/0317",
        "status": "active",
        "issued_at": "2024-03-01",
        "expires_at": "2029-02-28"
      },
      {
        "regulator": "BCC",
        "license_type": "Agent de monnaie électronique",
        "license_number": "BCC/DSIF/AME/2025/042",
        "status": "active",
        "issued_at": "2025-07-15",
        "expires_at": "2028-07-14"
      }
    ],
    "documents": [
      {
        "type": "statutes",
        "issued_at": "2023-02-10",
        "file": {
          "content_type": "application/pdf",
          "url": "https://files.rdcpass.cd/d/9f2c41e7b0?sig=Qm9h2x",
          "expires_at": "2026-09-26T10:20:02Z"
        }
      },
      {
        "type": "rccm_extract",
        "issued_at": "2026-01-12",
        "file": {
          "content_type": "application/pdf",
          "url": "https://files.rdcpass.cd/d/3a7d0c25f9?sig=Lp4r8k",
          "expires_at": "2026-09-26T10:20:02Z"
        }
      },
      {
        "type": "id_nat_certificate",
        "issued_at": "2023-03-02",
        "file": {
          "content_type": "application/pdf",
          "url": "https://files.rdcpass.cd/d/c81e5b9a44?sig=Tz7w1n",
          "expires_at": "2026-09-26T10:20:02Z"
        }
      }
    ],
    "financials": {
      "share_capital": { "value": 10000, "currency": "USD" },
      "declared_turnover_band": "USD_1M_5M",
      "fiscal_year": 2025
    }
  },
  "scopes_applied": [
    "kyb.basic",
    "kyb.addresses",
    "kyb.contacts",
    "kyb.activities",
    "kyb.officers",
    "kyb.beneficial_owners",
    "kyb.shareholders",
    "kyb.licenses",
    "kyb.documents",
    "kyb.financials"
  ],
  "scopes_withheld": [],
  "purpose": "customer_onboarding",
  "created_at": "2026-09-26T10:15:02Z"
}

Trust & privacy

  • Your organization subscribes to business data scopes once. Each application then picks only the scopes it needs.
  • Every request states its purpose, and every access is logged for audit.
  • Registry documents are delivered through short-lived secure links. Store the documents if you need them, not the links.
  • Requests are signed, encrypted end to end and sent over mutually authenticated connections.

Pricing

Billed per verification.

The company’s legal identity is included in every result. Each additional KYB scope that returns data adds a small surcharge. Batch items cost less, and requests rejected with an error are never billed.

Frequently asked questions

Is this the same as the review RDCPASS makes of my own company?+

No. KYB Verification is for the businesses you deal with: your merchants, suppliers and partners. The due-diligence review of your own organization is a separate step before you go live.

What happens if a company has been dissolved?+

The result is marked inactive and gives the actual status, for example suspended, dissolved or in liquidation. Treat that as a reason to stop, even if the company shows you a genuine certificate.

Can I screen the directors and owners too?+

Yes. Officers and beneficial owners are returned with their RDCPASS identity, so you can send them straight to AML & CTF Screening to check for sanctions and politically exposed persons.

Can I try it before going live?+

Yes. The sandbox is free. It returns the same data as production, using synthetic test companies.

Start using KYB Verification

Building and testing in the sandbox is free. You go live once your business and application have passed due diligence.